MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 ca801ba50731615aead8609b5aab53cdbecef0312e71f154ea68bd36f96228ae. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: ca801ba50731615aead8609b5aab53cdbecef0312e71f154ea68bd36f96228ae
SHA3-384 hash: 86f67e5e6fbf1da77986e97e1a4f7fdaf37600aaf7fe2eea86269d61b93788a876eebcb8b8ce8ff988a820b668a8678a
SHA1 hash: 1705ae75c200f974522dbda49f6258178bd15589
MD5 hash: 12cd20eda6d4f01cbb3a95c3e6857bd2
humanhash: wolfram-oranges-football-berlin
File name:PO_00405020.ace
Download: download sample
Signature GuLoader
File size:32'711 bytes
First seen:2020-05-06 18:41:47 UTC
Last seen:2020-05-07 09:22:38 UTC
File type: ace
MIME type:application/octet-stream
ssdeep 768:RZezk+iX5dy5fNA/oGL9Q21klDfRA+TrcH5qKfpCG:RsoDvkfNCZv1+dAyrKx
TLSH 71E2F038DC922393A5DF5976DAC3450AE4BF3803E820A3865475B6B131E2BA188377DD
Reporter jarumlus

Intelligence


File Origin
# of uploads :
2
# of downloads :
76
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-06 19:37:42 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
22 of 48 (45.83%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

ace ca801ba50731615aead8609b5aab53cdbecef0312e71f154ea68bd36f96228ae

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments